🛡️ Security Scan Report

Trivy Vulnerability & Secret Scanner
Service: eizen-abb-edge
Branch: feature/sop-cpu
Build: #10
Date: 2026-02-05 15:02:19

0

Critical

4

High

2

Medium

0

Low

0

Secrets

1

Misconfig

🔴 Vulnerabilities (5)
SeverityCVE IDPackageInstalledFixed InDescription
MEDIUM CVE-2025-68146 filelock 3.20.0 3.20.1 filelock: filelock: Time-of-Check-Time-of-Use (TOCTOU) race condition and symlink attack allows arbi
MEDIUM CVE-2026-22701 filelock 3.20.0 3.20.3 filelock: filelock Time-of-Check-Time-of-Use (TOCTOU) in SoftFileLock
HIGH CVE-2025-66418 urllib3 2.5.0 2.6.0 urllib3: urllib3: Unbounded decompression chain leads to resource exhaustion
HIGH CVE-2025-66471 urllib3 2.5.0 2.6.0 urllib3: urllib3 Streaming API improperly handles highly compressed data
HIGH CVE-2026-21441 urllib3 2.5.0 2.6.3 urllib3: urllib3 vulnerable to decompression-bomb safeguard bypass when following HTTP redirects (st
🔑 Secrets (0)
TypeFileLineMatch
✅ No secrets found
⚙️ Misconfigurations (1)
SeverityIDCheckFileMessage
HIGH DS-0002 Image user should not be 'root' Dockerfile Specify at least 1 USER command in Dockerfile with non-root user as argument
📄 Raw JSON Report (click to expand)